Cross-site scripting (XSS) vulnerability in forum.asp in Snitz Forums 2000 3.4.06 allows remote attackers to inject arbitrary web script or HTML via the sortorder parameter (strtopicsortord variable).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Snitz_forums_2000 | Snitz_communications | 3.4.06 (including) | 3.4.06 (including) |